Re: Creating Site to Site Dynamic VPN

Is not that the dynamic is completely wide opened for any one to connect, it still needs to authenticate the tunnel through wild-card pre-shared keys, I don't see any other way other than have a static IP instead of dynamic at the tunnel termination point on the dynamic side.

Re: Creating Site to Site Dynamic VPN

I totally agree too. I am throwing this question out for inputs. Creating a vpn topology with static IP at one end and the other end dynamic IP, disregarding all the vpn phases and how it negotiates, would it be fair to say this setup is more vulnerable than creating a site to site vpn with static IP on both end?

DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
view more

Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :
----------------------------------------------------------------
Technolo...
view more